159.89.225.201
Classification: Malicious
159.89.225.201 is a malicious IP address. Reported by 5 threat sources, last seen 2026-08-29. Network: AS14061 DigitalOcean, LLC.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Bruteforce login attacker | Blocklist.de | 2026-08-28 09:00:16 | 2026-08-29 09:00:13 | attacker malicious-activity | |
| HTTP Attacker | Blocklist.de | 2026-08-28 07:00:20 | 2026-08-29 07:00:15 | attacker malicious-activity | |
| Suspicious Host | AbuseIPDB | 2025-12-02 04:05:59 | 2026-06-03 02:58:14 | anomalous-activity | |
| Malicious Host | CIArmy | 2023-11-18 08:45:27 | 2024-02-27 09:28:00 | malicious-activity | |
| Mail Spammer | Abuseat.org | 2019-05-30 00:08:10 | 2019-05-30 00:08:10 | ||
| Malware Download | Abuse.ch | 2019-05-30 00:08:09 | 2019-05-30 00:08:09 |
Tags
bashlite apache ddos rfi attacker login bruteforce bot joomla wordpressWhois information
- AS name
- AS14061 DigitalOcean, LLC
- AS registry
- arin
- AS date
- 2017-07-07 00:00:00
- AS CIDR
- 159.89.224.0/20
- CIDR
- 159.89.0.0/16
- Registrant
- DigitalOcean, LLC
- Address
- 101 Ave of the Americas 10th Floor
- City
- North Bergen
- State
- NJ
- Postal code
- 07047
- Country
- US — United States 🇺🇸
- Contact email
- [email protected], [email protected]
- First indexed
- 2019-05-30 00:08:09
- Last updated
- 2026-08-31 11:27:44
Malicious IPs in the same CIDR
159.89.237.78 159.89.231.100 159.89.230.182 159.89.225.170 159.89.225.201 159.89.229.13 159.89.239.246 159.89.227.187 159.89.235.158 159.89.229.96 159.89.235.42